Abstract
As Machine Learning (ML) becomes integral to automated quality assurance, the security of ML models emerges as a critical concern for manufacturing processes. Among the threats posed by adversarial machine learning attacks, data poisoning - the corruption of training data to introduce malicious behavior in ML models - represents the most concerning ML-related security risk to the industry [1].This paper investigates the vulnerability of ML-based quality assurance systems to data poisoning attacks in manufacturing, with steel surface defect inspection as a use-case. Using a popular object detection model trained on an industrial steel manufacturing image dataset, we evaluate two data poisoning approaches: 1) image poisoning and 2) label poisoning, targeting three adversarial objectives: a) misclassification of defect criticality, b) erroneous size estimation, and c) missed defect detection. Our experiments show that label poisoning is a serious threat to the accuracy of steel defect inspection, potentially leading to significant misevaluation in defect size and defect criticality even when less than 12% of the training data is compromised. On the other hand, we show that image poisoning has little impact on the accuracy of steel defect inspection even when more than half of the samples in a class are poisoned.
| Original language | English |
|---|---|
| Title of host publication | 2026 IEEE Conference on Artificial Intelligence, CAI 2026 |
| Publisher | IEEE Institute of Electrical and Electronic Engineers |
| Pages | 140-146 |
| Number of pages | 7 |
| ISBN (Electronic) | 9798331560393 |
| DOIs | |
| Publication status | Published - 2026 |
| MoE publication type | A4 Article in a conference publication |
| Event | 4th IEEE Conference on Artificial Intelligence, CAI 2026 - Granada, Spain Duration: 8 May 2026 → 10 May 2026 |
Publication series
| Series | 2026 IEEE Conference on Artificial Intelligence, CAI 2026 |
|---|
Conference
| Conference | 4th IEEE Conference on Artificial Intelligence, CAI 2026 |
|---|---|
| Country/Territory | Spain |
| City | Granada |
| Period | 8/05/26 → 10/05/26 |
Funding
This work is supported by the European Union through the HORIZON Research and Innovation Programme under the ENFIELD project (European Lighthouse to Manifest Trustworthy and Green AI, Grant No. 101120657).
Fingerprint
Dive into the research topics of 'Poisoning Object Detection Models for Surface Defect Inspection in Steel Manufacturing'. Together they form a unique fingerprint.Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver